Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-51265 | A vulnerability, which was classified as critical, was found in Codezips Event Management System 1.0. Affected is an unknown function of the file /contact.php. The manipulation of the argument title leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. |
Tue, 25 Feb 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codezips
Codezips event Management System |
|
| CPEs | cpe:2.3:a:codezips:event_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Codezips
Codezips event Management System |
Mon, 30 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 29 Dec 2024 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as critical, was found in Codezips Event Management System 1.0. Affected is an unknown function of the file /contact.php. The manipulation of the argument title leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | Codezips Event Management System contact.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-12-30T14:52:25.727Z
Reserved: 2024-12-28T09:02:15.653Z
Link: CVE-2024-13007
Updated: 2024-12-30T14:51:52.134Z
Status : Analyzed
Published: 2024-12-29T09:15:05.580
Modified: 2025-02-25T22:46:39.787
Link: CVE-2024-13007
No data.
OpenCVE Enrichment
No data.
EUVD